Skip to content
Back to Guides
8 min read

Understanding DDoS Protection

How our DDoS mitigation works, what it protects against, and best practices for keeping your server secure.

By Lodgichost Team · Last updated: August 19, 2026

A DDoS (distributed denial-of-service) attack tries to overwhelm your server with more traffic than it can handle, knocking it offline for everyone. Minecraft servers are a favourite target because there is real money in hosted communities — greifers and rival servers can pay for attacks that are cheap to launch and disruptive to survive. The good news is that protection happens at the network level, before any of that traffic reaches your server, so understanding how that works, and how to layer your own security on top, keeps you online when others fall.

How DDoS Mitigation Works

Our DDoS mitigation system uses a combination of hardware and software defences deployed at the network edge. When an attack is detected, malicious traffic is automatically filtered and diverted away from your server while legitimate connections continue uninterrupted. Our mitigation infrastructure can absorb multi-terabit attacks without impacting server performance.

What We Protect Against

  • Layer 3/4 attacks: UDP floods, SYN floods, ICMP floods, and amplification attacks.
  • Layer 7 attacks: HTTP floods, Slowloris, and application-level DDoS attacks targeting game protocols.
  • Botnet-driven attacks: Large-scale distributed attacks from compromised devices.

Best Practices for Server Owners

  • Keep your server software and plugins up to date to patch known vulnerabilities.
  • Use a whitelist to restrict access to trusted players only.
  • Set connection rate limits in your server configuration.
  • Monitor server logs for unusual connection patterns.
  • Enable logging and alerting for early attack detection.

What Happens During an Attack

  1. Our automated systems detect anomalous traffic patterns within seconds.
  2. The mitigation system activates, filtering malicious traffic at the network edge.
  3. Legitimate connections continue with minimal latency impact.
  4. Our NOC team is alerted and monitors the situation in real time.
  5. After the attack subsides, traffic returns to normal routing automatically.

Troubleshooting

  • Players timing out: Check if the issue is widespread or isolated to specific players.
  • High latency during gameplay: Run a traceroute to identify network bottlenecks.
  • Server unreachable: Verify the server is running in the portal and not blocked by a firewall.
  • False positives: Contact support if legitimate players are being blocked.

Additional Security Measures

  • Enable two-factor authentication on your portal account.
  • Use strong, unique passwords for server admin accounts.
  • Regularly audit plugin permissions to minimize attack surface.

Reporting Attacks and Recovering

If your server has been under attack, acting quickly and methodically limits the damage and reduces the chance of repeat attacks:

  • Report the attack to support with timestamps and any player reports — this helps us tune mitigations and investigate the source.
  • Do not restart the server in a panic during mitigation; let the edge filtering finish absorbing the attack before you change anything.
  • Once traffic is stable, review recent logs and player lists for the accounts, IPs, or plugin abuse that may have drawn the attack.
  • Rotate admin credentials, update plugins, and tighten whitelist and permission rules before reopening your public links.

Frequently Asked Questions

Is DDoS protection really included at no extra cost?

Yes. Every Lodgichost Minecraft plan includes network-level DDoS protection at no additional charge — it is filtered at the edge so it never reaches or slows your server.

Will protection add latency to my server?

No. Mitigation runs on the network path and only engages when an attack is detected. In normal operation traffic flows with no measurable latency increase.

What should I do if I suspect my server is being attacked?

Check whether all players time out simultaneously (a strong sign), then contact support. Legitimate connections should keep working during mitigation, so a total outage usually points to a server-side issue rather than DDoS.

Can a whitelist stop a DDoS?

No. A whitelist blocks login access, but DDoS traffic never reaches the login stage — it is a flood at the network layer. Still use a whitelist to reduce attack surface and block abuse from trusted-but-hostile players.

Is DDoS protection enough for my server's security?

Protection stops availability attacks, but it is not a firewall for malicious players, exploit attempts, or account theft. Combine it with strong credentials, 2FA, updated plugins, and a permission setup that limits what players can do.

Related Guides

This site uses cookies to improve your experience. Learn more.